|
197881
|
7.8 |
HIGH
Local
|
microsoft
|
office
|
Microsoft Office 2007 Service Pack 3, Microsoft Office 2010 Service Pack 2, Microsoft Office 2013 Service Pack 1, and Microsoft Office 2016 allow an attacker to run arbitrary code in the context of t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11882
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197882
|
8.8 |
HIGH
Network
|
microsoft
|
asp.net_core
|
ASP.NET Core 2.0 allows an attacker to steal log-in session information such as cookies or authentication tokens via a specially crafted URL aka "ASP.NET Core Elevation Of Privilege Vulnerability".
|
CWE-601
Open Redirect
|
CVE-2017-11879
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197883
|
4.7 |
MEDIUM
Local
|
microsoft
|
windows_server_2012 windows_7 windows_10 windows_server_2016 windows_8.1 windows_server_2008 windows_rt_8.1
|
Windows kernel in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an attac…
|
CWE-200
Information Exposure
|
CVE-2017-11880
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197884
|
7.8 |
HIGH
Local
|
microsoft
|
excel office_compatibility_pack excel_viewer
|
Microsoft Excel 2007 Service Pack 3, Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1, Microsoft Excel 2013 RT Service Pack 1, Microsoft Excel 2016, Microsoft Office Compatibi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11878
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197885
|
5.5 |
MEDIUM
Local
|
microsoft
|
excel office_compatibility_pack excel_viewer
|
Microsoft Excel 2007 Service Pack 3, Microsoft Excel 2010 Service Pack 2, Microsoft Excel 2013 Service Pack 1, Microsoft Excel 2013 RT Service Pack 1, Microsoft Excel 2016, Microsoft Office Compatibi…
|
NVD-CWE-noinfo
|
CVE-2017-11877
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197886
|
8.8 |
HIGH
Network
|
microsoft
|
project_server sharepoint_enterprise_server
|
Microsoft Project Server and Microsoft SharePoint Enterprise Server 2016 allow an attacker to use cross-site forgery to read content that they are not authorized to read, use the victim's identity to…
|
CWE-352
Origin Validation Error
|
CVE-2017-11876
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197887
|
3.1 |
LOW
Network
|
microsoft
|
chakracore edge
|
Microsoft Edge in Microsoft Windows 10 1703, 1709, Windows Server, version 1709, and ChakraCore allows an attacker to bypass Control Flow Guard (CFG) to run arbitrary code on a target system, due to …
|
NVD-CWE-noinfo
|
CVE-2017-11874
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197888
|
7.5 |
HIGH
Network
|
microsoft
|
chakracore edge
|
ChakraCore and Microsoft Edge in Windows 10 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to gain the same user rights as the current user, due to ho…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11873
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197889
|
6.5 |
MEDIUM
Network
|
microsoft
|
edge
|
Microsoft Edge in Microsoft Windows 10 1607, 1703, and Windows Server 2016 allows an attacker to force the browser to send data that would otherwise be restricted to a destination website of the atta…
|
NVD-CWE-noinfo
|
CVE-2017-11872
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197890
|
6.1 |
MEDIUM
Network
|
microsoft
|
edge
|
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to trick a user into loading a page containing malicious c…
|
CWE-20
Improper Input Validation
|
CVE-2017-11863
|
2024-11-21 12:08 |
2017-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|